YoVDO

3D Red Pill - A Guest-to-Host Escape on QEMU/KVM Virtio Device

Offered By: Black Hat via YouTube

Tags

Black Hat Courses Cybersecurity Courses Virtualization Courses System Security Courses Exploit Development Courses

Course Description

Overview

Explore a groundbreaking guest-to-host escape exploitation technique for QEMU/KVM virtio devices in this 27-minute Black Hat conference talk. Delve into the intricacies of the 3dRedPill exploit as presenters Zhijian Shao, Matthew Shao, Jian Weng, and Yue Zhang demonstrate how it bypasses security measures in virtio-gpu devices. Learn about structure-aware fuzzing, performance analysis, and bug analysis techniques used in developing the exploit. Examine the exploitation process, proposed solutions, memory mapping vulnerabilities, and overwrite techniques. Gain valuable insights into virtualization security and potential mitigation strategies for protecting against such sophisticated attacks.

Syllabus

Introduction
Structure aware fuzzing
Performance analysis
Bug analysis
Exploit
Solution
Memory Mapping
Overwrite


Taught by

Black Hat

Related Courses

Advanced Operating Systems
Georgia Institute of Technology via Udacity
Cloud Computing Applications, Part 1: Cloud Systems and Infrastructure
University of Illinois at Urbana-Champaign via Coursera
GT - Refresher - Advanced OS
Georgia Institute of Technology via Udacity
Introduction to Cloud Infrastructure Technologies
Linux Foundation via edX
Microsoft Windows Server 2012 Fundamentals: Hyper-V
Microsoft via edX